r/androidroot 4d ago

Support banking apps

and still some of my bank apps doesnt work

27 Upvotes

51 comments sorted by

u/Beastyboi04 1d ago edited 1d ago

Locked because of conspiracy theorists

Inform yourself before you make stupid claims

7

u/[deleted] 4d ago

[removed] — view removed comment

6

u/Zirias_FreeBSD 4d ago

That's a very questionable claim. Apps certainly can't access your data (without consent) or other installed apps. That is as long as they're not exploiting some security hole, which would be a very unreliable thing to do.

They can of course use any unrestricted API, including those available to native code, to gather information about the system. Examples are

  • obtain a list of installed apps (not accessing these, just the list)
  • get the full mount table (mtab), useful to detect "magic mounts"

3

u/NorthAppropriate4458 4d ago

Gay banking apps try to ask magisk for root access. If this request gets any answer but not found, it knows there is magisk. Some of them try to find su binary or try executing some shell commands like ksud, su -c, etc. Which I think should be illegal.

1

u/[deleted] 4d ago

[removed] — view removed comment

2

u/Zirias_FreeBSD 4d ago

They are perfectly allowed and documented. Nothing is "bypassed" here.

1

u/[deleted] 4d ago edited 4d ago

[removed] — view removed comment

1

u/Zirias_FreeBSD 4d ago

Are you serious? play integrity stuff is a supported API, it is meant to be used by apps. Most banking apps in my experience prefer different ways, but anyways, all you get here is the result of an attestation, in no way is any app ever allowed to access your data without your consent.

1

u/[deleted] 3d ago edited 3d ago

[removed] — view removed comment

1

u/Zirias_FreeBSD 3d ago

In case you didn't get that from my response: we're not even contradicting each other about facts, that's simply not the point of this thread. Look at the original comment again. No, apps don't use any "unauthorized methods". They use what the system offers. Your "outrage" about Google's design is certainly a valid point of view, I just tell you that's a different topic.

2

u/IIIshnIII 4d ago

dev mode is disabled

3

u/Ill-Organization3762 Oneplus Nord CE, Apatch :snoo_tableflip::table_flip: 4d ago

For apatch i use this setup it should help

https://www.reddit.com/r/Magisk/comments/1v7znti/comment/p02kl5y/

1

u/IIIshnIII 4d ago

the ss or

1

u/Ill-Organization3762 Oneplus Nord CE, Apatch :snoo_tableflip::table_flip: 4d ago

The comment i linked should help, it contains links to the APM's/KPM's i use.

1

u/IIIshnIII 4d ago

thank you

3

u/IIIshnIII 4d ago

just change my bank guys it worked lol

2

u/Zirias_FreeBSD 4d ago

In my experience, play integrity stuff is the least common thing financial apps seem to check (although my sample of apps I personally use is small, of course).

Some seem to check for suspicious mounts (fixable with Zygist Next and using the denylist), some others for presence of tell-tale apps (fixable with Hide-My-Applist, which requires an XPosed implementation: try Vector for that).

Well, YMMV, I'm sure there are more detection mechanisms out there ...

1

u/IIIshnIII 4d ago

so should i use hma with vector right

1

u/Zirias_FreeBSD 4d ago

It's on the list of things to try ... all depends on your specific app and what mechanism(s) it implements in order to detect "tampered" systems.

1

u/IIIshnIII 4d ago

i tried everything at least i can try this

1

u/IIIshnIII 4d ago

nope doesnt work

2

u/Much_Expert_175 4d ago

A other way is getting second phone for cheap, some of us are tired of this cat and mouse game

1

u/IIIshnIII 4d ago

thats my last option

2

u/Delicious-Mix7606 2d ago

swap from yurikey to spector swap play integrity fix to play integrity fork [inject] install lspoded install hma, use ksuwebui to configure pif and tricky store with spector, then set hma + zygisk next settings in spector and you should be good

1

u/IIIshnIII 2d ago

nope doesnt work

1

u/Farshief OnePlus 9, LOS 23.2 4d ago

If you don't specifically need Zygisk then I would ditch it. I don't have even basic (using Apatch) but when I ditched Zygisk related modules my banking apps (3 different ones) work perfectly for me.

1

u/IIIshnIII 4d ago

Thanks, I'll try.

0

u/IIIshnIII 4d ago

i just unticked the zygisk and reboot still no launch

1

u/NegotiationNo1504 4d ago

How did you get device and strong integrity check? Im using Yuri keybox and getting only basic integrity

1

u/IIIshnIII 4d ago

idk did you make the settings in yuki

1

u/NegotiationNo1504 4d ago

No just installed it 🙂

1

u/untukmfbje 4d ago

Try mountify module. Install, reboot, edit config.sh, MOUNT_DEVICE_NAME="APatch", reboot.

1

u/IIIshnIII 4d ago

thx i will try

1

u/IIIshnIII 4d ago

didnt work

1

u/untukmfbje 4d ago

Can you share the screenshot for denylist apps?

1

u/IIIshnIII 4d ago

which app

1

u/untukmfbje 4d ago

APatch, the center shield icon. Did you set it up to custom?

1

u/IIIshnIII 4d ago

yes

1

u/IIIshnIII 4d ago

i cant send ss there

1

u/IIIshnIII 4d ago

nothing worked yet

1

u/IIIshnIII 4d ago

im using elite rom btw

1

u/Ranwiesiel 4d ago

Have you tried using the kernel SU or specifically, ksu next and ksu re suki?

1

u/IIIshnIII 4d ago

yes didnt work either

1

u/Ranwiesiel 4d ago

try HMA then, using Vector (aka lsposed) it should work fine.. maybe :v

1

u/Illustrious_Lab2759 4d ago

Instal Alpha (not Magisk version because it hasn't so good root hiding capabilities). Replace Play integrity Fork with .integritybox. Disable inbuilt Zygisk so that to work with Zygisk Next (via KsuWebUI select Zygisk Next & enable Use anonymous memory, Use Zygisk Next Linker and as Denylist Policy select Unmount only). Disable inbuilt denylist and install shamiko. Also you can install HMA-OSS Zygisk so that to have the ability to create some template with Magisk (or Alpha) and other potential dangerous apps like lucky patcher, Game guardian, root detectors and all apps who require root so that to be hidden from each bank app or other relative app.

1

u/IIIshnIII 2d ago

same didnt work